?

? Privacy Policy

?

?? The HKMI , as a Data User, respects the Privacy of Personal Data. The College fully supportive and committed to upholding the spirit of the data protection principles and to complying with the requirements of the Ordinance in its management practices. For compliance with the requirements of the Ordinance, the College prepared the Policy Guidelines on the Processing of Personal Data to ensure compliance by staff members in the strictest standards of security and confidentiality. The main points of the Collegepolicy and practices are summarized as follows:

? 1 ?? Personal data will only be collected for a lawful purpose, and by lawful and fair means. Data collected in relation to a specified purpose must be adequate but not excessive in respect of the purpose. The data subject must be informed explicitly on collection:

?? a ?? purpose(s) for which the data are to be collected and the classes of persons to whom the data may be transferred;

?? b ?? whether it is obligatory or voluntary for such data to be supplied, and the consequences of not supplying the obligatory data;

?? c ?? the right of the data subject to request access to, and correction of data held by the data users; and

?? d ?? the person in charge to handle such data access and correction requests.

? 2 ?? All reasonably practicable steps will be taken to ensure that the personal data kept is accurate.

? 3 ?? Personal data will not be kept longer than is necessary for the fulfilment of the purpose for which it is collected.

? 4 ?? Without the prescribed consent of a data subject, the personal data will not be used for any purpose other than the purpose for which the data was originally collected. The prescribed consent may be withdrawn by a data subject.

? 5 ?? All reasonably practicable steps will be taken to ensure that personal data held are protected against unauthorized or accidental access, processing, erasure or other use.

? 6 ?? The following information in relation to personal data of the College will be generally available:

?? a ?? the kinds of personal data held;

?? b ?? the main purpose for which personal data are used; and

?? c ?? the policies and practices in relation to personal data.

? 7 ?? A data subject will have the right to request access to personal data of himself/herself held by a data user, in person or in writing to the department/office concern, within a reasonable time, for a fee that is not excessive, in a manner that is reasonable, and in a form that is intelligible. The data subject will be notified of the outcome within 40 days of submitting his/her access request, and to be given a reason if a data correction request is refused.

? 8 ?? A data subject will also have the right to request correction of the personal data, in person or in writing to the department/office concern.

? 9 ?? Regarding the transmission of personal data over the Internet, the College has imposed the following security measures:

?? a ?? Encryption ¨C Though the College is still in the process of planning the implementation of an encryption mechanism, the Collegeservers are, to the maximum possible extent, protected against security attacks over the Internet by means of system securities set up and the "Firewalls". A well-organized and safe system of backups is in place.

As such, users data supplied to the College will reside in the College servers which are protected to the maximum possible extent against unauthorized or accidental access, processing, erasure or other illegitimate manipulation.

?? b ?? Use of Cookies ¨C In order to protect the users' privacy, the College will normally not implement applications with cookies requirement. In rare cases, when cookies are used, a statement will be provided on its web page to alert users before initiating the application.

Although through cookies, our web servers can monitor which sites the users' have visited, which pages they have seen and which options they have chosen, the College will NOT make any analysis on these cookies data NOR provide such data to outside organizations.

? 10 ?? At the same time, the College does not allow users, both internal and external, to make rude and annoying spamming which includes sending unsolicited email, making mailbombs, disseminating commercial advertisements/promotions and distributing mail chain letter. Appropriate action including legal prosecution may be taken to the offenders.

?
?
?